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IN THE CLAIMS 
Please amend the claims as follows: 
Claim 1-14 (Canceled). 

Claim 15 (Currently Amended): A system for protecting a communication device 

against a denial-of-service attack, the system comprising: 

a monitoring device configur e d to b e provided on a local area network including to 

which the communication device that is a targ e t of the d e nial of s e ndee attack is connected , 

the monitoring device being configured to monitor monitoring a packet transmitted to the 

communication device via an internet-service-provider network; and 

a restricting device configur e d to b e provided on the internet-service-provider 

network, the restricting device being configured to restrict restricting a packet to the local 

area network, wherein the monitoring device includes 

an attack detecting unit configured to detect that d e t e cts an attack by the 
packet on the communication device, and 

a protection-request-information transmitting unit configured to transmit to the 
restricting device that transmits protection request information indicating a request for 
protection against the attack , the protection-request-information transmitting unit 
being configured to update the protection request information to exclude from 
restriction packets f not included in the attack, based on a report transmitted from the 
restricting device, to the restricting devic e ; and 

the restricting device includes a packet restricting unit configured to restrict that 
r e stricts a packet transmitted to the communication device via the internet-service-provider 
network based on the protection request information. 
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Claim 16 (Currently Amended): The system according to claim 15, wherein 

the monitoring device further includes a signature generating unit configured to 
generate that g e n e rat e s a signature indicating a feature of a packet that attacks the 
communication device, 

the protection-request-information transmitting unit transmits the protection request 
information including the signature to the restricting device, and 

the packet restricting unit restricts a packet corresponding to the signature. 

Claim 17 (Currently Amended): The system according to claim 16, wherein 
the restricting device further includes a signature determining unit configured to 

determine that determin e s whether the protection request information including the signature 

is appropriate, and 

the packet restricting unit restricts a packet corresponding to a signature that is 
determined to be appropriate, and does not restrict a packet corresponding to a signature that 
is determined to be inappropriate. 

Claim 18 (Currently Amended): The system according to claim 16, wherein 
the restricting device further includes 

a report generating unit configured to generate that gen e rat e s a report 
including [[on]] a feature and an amount of packets a pack e t corresponding to the 
signature, and a report transmitting unit configured to transmit that transmits the 
report to the monitoring device A [[;]] 

the signature generating unit generates a new signature based on the report, 
the protection-request-information transmitting unit transmits the protection request 
information including the new signature to the restricting device, and 
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the packet restricting unit restricts a packet corresponding to the new signature. 

Claim 19 (Currently Amended): The system according to claim 18, wherein 
the restricting device further includes a forwarding unit configured to forward that 
forwards the protection request information to other restricting devices d e vice provided on 
the internet-service-provider network, [[and]] the forwarding unit determin e s being 
configured to determine whether to forward the protection request information based on the 
report generated by the report generating unit , and forward s the prot e ction r e quest 
information to the oth e r restricting d e vice upon d e termining that it is n e cessary to forward th e 
protection requ e st information . 

Claim 20 (Currently Amended): The system according to claim 17, wherein 
the restricting device further includes a determination-result transmitting unit 
configured to transmit that transmits a determination result of det e rmination of the signature 
determining unit to the monitoring device, and when the result of det e rmination indicates that 
the signature is inappropriat e , the signature generating unit of the monitoring device 
generating generates, bas e d on the result of d e termination, a new signature indicating the 
feature of the packet that attacks the communication device when the d etermination result 
indicates that the signature is inappropriate . 

Claim 21 (Currently Amended): A method of causing a monitoring device and a 
restricting device to protect prot e cting a communication device against a denial-of-service 
attack using a monitoring d e vice and a restricting d e vic e, the monitoring device being 
configured to be provided on a local area network including to which the communication 
device that is a target of the denial of s e rvice attack is conn e ct e d and being configured to 
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monitor monitoring a packet transmitted to the communication device via an internet-service- 
provider network, the restricting device being configured to b e provided on the internet- 
service-provider network and being configured to restrict r e stricting a packet to the local area 
network, the method comprising: 

detecting, at the monitoring device, an attack by the packet attack d e t e cting including 
the monitoring d e vic e d e t e cting an attack by th e pack e t on the communication device; 

transmitting, from the monitoring device to the restricting device, a prot e ction 
r e quest information transmitting including th e monitoring d e vic e transmitting protection 
request information indicating a request for protection against the attack to the restricting 
d e vic e; [[and]] 

restricting, at the restricting device, packets pack e t r e stricting including the restricting 
d e vic e r e stricting a pack e t transmitted to the communication device via the internet-service- 
provider network based on the protection request information; 

transmitting, from the restricting device to the monitoring device, a report including 
information on the attack; and 

transmitting, from the monitoring device to the restricting device, an updated 
protection request information excluding from restriction packets not included in the attack, 
based on the report . 

Claim 22 (Currently Amended): The method according to claim 21, further 
comprising: 

signatur e gen e rating including the monitoring d e vic e generatin g, at the monitoring 
device, a signature indicating a feature of a packet that attacks the communication device, 
wherein 
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th e prot e ction r e quest information transmitting includes transmitting th e protection 
request information transmitted to the restricting device includes including the signature to 
th e restricting d e vic e, and 

the packet restricting includes r e stricting a packet corresponding to the signature is 
restricted . 

Claim 23 (Currently Amended): The method according to claim 22, further 
comprising: 

signatur e d e t e rmining including th e r e stricting d e vic e determinin g, at the restricting 
device, whether the protection request information including the signature is appropriate, 

wherein the packet r e stricting includ e s r e stricting a packet corresponding to a 
signature that is determined to be appropriate is restricted, [[;]] and not restricting a packet 
corresponding to a signature that is determined to be inappropriate is not restricted . 

Claim 24 (Currently Amended): The method according to claim 22, further 
comprising: 

r e port g e nerating including th e restricting d e vic e generatin g, at the restricting device, 
a report on a feature and an amount of packets a pack e t corresponding to the signature; and 

r e port transmitting including the restricting d e vic e transmitting the report from the 
restricting device to the monitoring device, 

wherein the signatur e g e nerating includes g e n e rating a new signature is generated at 
the monitoring device based on the report, the prot e ction r e qu e st information transmitting 
includ e s transmitting the protection request information including the new signature is 
transmitted to the restricting device, and the packet restricting includ e s r e stricting a packet 
corresponding to the new signature is restricted . 
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Claim 25 (Currently Amended): A computer-readable recording medium storing 
thereon computer-readable instructions that stor e s a comput e r program for protecting a 
communication device against a denial-of-service attack using a monitoring device and a 
restricting device, the monitoring device being configured to be provided on a local area 
network including to which the communication device that i s a target of th e denial of service 
attack is connect e d and being configured to monitor monitoring a packet transmitted to the 
communication device via an internet-service-provider network, the restricting device being 
configured to be provided on the internet-service-provider network and being configured to 
restrict restricting a packet to the local area network, wher e in the computer program causes a 
computer to ex e cute the computer-readable instructions when executed by a com p uter cause 
the computer to perform the method comprising : 

attack d e t e cting including the monitoring device detecting, at the monitoring device, 
an attack by the packet on the communication device; 

protection request information transmitting including the monitoring d e vice 
transmittin g, from the monitoring device to the restricting device, protection request 
information indicating a request for protection against the attack to the restricting d e vice ; 
[[and]] 

packet r e stricting including the restricting device restricting, at the restricting device, 
a packet transmitted to the communication device via the internet-service-provider network 
based on the protection request information; 

transmitting, from the restricting device to the mo nitoring device, a report including 
information on the attack; and 
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transmitting, from the monitoring device to the restricting device, an updated 
protection request information excluding from restriction packets not included in the attack, 
based on the report . 

Claim 26 (Currently Amended): The computer-readable r e cording medium according 
to claim 25, further comprising: wh e r e in 

tho computer program further causes th e computer to ex e cut e signatur e generating 
including the monitoring d e vic e generatin g, at the monitoring device, a signature indicating a 
feature of a packet that attacks the communication device; [[,]] 

tho protection request information transmitting includes transmitting, from the 
monitoring device to the restricting device, the protection request information including the 
signature; to tho r e stricting d e vic e , and 

t he pack e t restricting includes restrictin g, at the restricting device, a packet 
corresponding to the signature. 

Claim 27 (Currently Amended): The computer-readable recording medium according 
to claim 26, further comprising: wh e r e in 

tho computer program further causes tho computer to execute a signatur e determining 
proc o duro of determining including tho restricting device determining, at the restricting 
device, whether the protection request information including the signature is appropriate; [[,]] 

tho packet restricting includes restricting a packet corresponding to a signature that is 
determined to be appropriate by tho signature d e termining unit, which is to bo transmitted to 
th o communication devic e; and 

not restricting a packet corresponding to a signature that is determined to be 
inappropriate , which is to be transmitt e d to tho communication d e vice . 
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Claim 28 (Currently Amended): The computer-readable r e cording medium according 
to claim 26, further comprising: wh e r e in 

th e comput e r program furth e r caus e s the computer to e x e cut e : 

a report g e n e rating proc e dur e of g e n e rating including the r e stricting d e vic e 
generatin g, at the restricting device, a report on a feature and an amount of packets a pack e t 
corresponding to the signature; and 

a report transmitting proc e dur e of transmitting including the restricting d e vic e 
transmitting the report from the restricting device to the monitoring device; [[,]] 

the signature generating procedure includ e s generatin g, at the monitoring device, a 
new signature based on the report; [[,]] 

the prot e ction requ e st information transmitting proc e dur e includ e s transmitting , from 
the monitoring device to the restricting device, the protection request information including 
the new signature; to th e r e stricting d e vic e , and 

the pack e t restricting procedure includ e s restrictin g, at the restricting device, a packet 
corresponding to the new signature , which is to be transmitt e d to th e communication d e vic e. 
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